Critical
Low
Medium

CVE-2025-34294

Alias:

Overview

Wazuh's File Integrity Monitoring (FIM), when configured with automatic threat removal, contains a time-of-check/time-of-use (TOCTOU) race condition that can allow a local, low-privileged attacker to cause the Wazuh service (running as NT AUTHORITY\SYSTEM) to delete attacker-controlled files or path...

Critical
Low
Medium
No items found.

Severity / CVSS Score:  (Critical)

CWE:

Discovery date: October 28, 2025

Authentication required: NoneYes

Attack Vector: None

Affected Components

Kodem Deep Dive

Stop the waste.
Protect your environment with Kodem.

Get a personalized demo
Get a personalized demo